PT-2016-3276 · Apache+3 · Apache Commons Fileupload+4
Published
2016-10-17
·
Updated
2024-05-27
·
CVE-2016-1000031
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Apache Commons FileUpload versions prior to 1.3.3
Description
The issue is related to the deserialization mechanism in the DiskFileItem class of the Apache Commons FileUpload library. It allows a remote attacker to execute arbitrary code or manipulate files in the target system using specially crafted data. The vulnerability can be exploited by sending a specially formed Java Object, enabling the attacker to write or copy files to arbitrary disk locations and execute arbitrary code.
Recommendations
For versions prior to 1.3.3, update to version 1.3.3 or later to resolve the issue.
As a temporary workaround, consider restricting the use of the DiskFileItem class until a patch is available.
Fix
RCE
Improper Access Control
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Apache Commons Fileupload
Apache Struts
Debian
Suse